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NEW PROCESSOR MODE FOR LIMITING THE OPERATION OF GUEST 
SOFTWARE RUNNING ON A VIRTUAL MACHINE SUPPORTED BY A 

VIRTUAL MACHINE MONITOR 



Field of the Invention 
The present invention relates generally to virtual machines, and more 
specifically to providing processor support for a virtual-machine monitor. 



Background of the Invention 

LO A conventional virtual-machine monitor (VMM) typically runs on a 

computer and presents to other software the abstraction of one or more 
virtual machines. Each virtual machine may function as a self-contained 
platform, rurming its own "guest operating system'' (i.e., an operating system 
hosted by the VMM). The guest operating system expects to operate as if it 

15 were running on a dedicated computer rather than a virtual machine. That is, 
the guest operating system expects to control various computer operations 
and have access to hardware resources during these operations. The 
hardware resources may include processor-resident resources (e.g., control 
registers) and resources that reside in memory (e.g., descriptor tables). 

20 However, in a virtual-machine environment, the VMM should be able to have 
ultimate control over these resources to provide proper operation of virtual 
machines and protection from and between virtual machines. To achieve this, 
the VMM typically intercepts and arbitrates all accesses made by the guest 
operating system to the hardware resources. 
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